CVE-2010-0814
CVE-2010-0814 describes a critical vulnerability in Microsoft Access Wizard Controls (ACCWIZ.dll) affecting Microsoft Office Access 2003 SP3 and 2007 SP1/SP2. This flaw allows remote attackers to execute arbitrary code by crafting a malicious website that improperly interacts with Internet Explorer's memory allocation during ActiveX control instantiation. With a CVSS score of 9.3, this vulnerability is highly severe, requiring medium attack complexity but allowing for complete compromise of confidentiality, integrity, and availability. Despite its high severity, there is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.
Impacted Technologies
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2003CPE matchmatch criteria | cpe:2.3:a:microsoft:access:2003:sp3:*:*:*:*:*:* | ||
2007CPE matchmatch criteria | cpe:2.3:a:microsoft:access:2007:sp1:*:*:*:*:*:* | ||
2007CPE matchmatch criteria | cpe:2.3:a:microsoft:access:2007:sp2:*:*:*:*:*:* |
CVSS Data
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploit Intelligence
Social Chatter
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
Media Mentions
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation
Remediation records are not available for this CVE.